Malware Targets 800 PV Monitoring Devices in Japan

Malware Targets 800 PV Monitoring Devices in Japan

First seen 19 Mar 2026, 22:42 UTC Pv-MagazinePv-Magazine-Australia 51.9

Article Content

Browse articles
ThreatCluster

In May 2024, a random malware strain targeted 800 remote monitoring devices at ground-mounted photovoltaic (PV) plants in Japan, as reported by Girasol Energy. The malware installed a backdoor, allowing unauthorized access and enabling cybercriminals to use internet banking for fraudulent activities. Although the incident did not cause financial or technical damage to the solar facilities, it highlighted vulnerabilities in the SolarView Compact SV-CPT-MC310 devices developed by Contec. The company identified 19 vulnerabilities in the SolarView devices from 2021 to 2023 and issued patches, but many users failed to apply them. This negligence led to the exploitation of these devices in a scam. The details of the incident's discovery remain unclear, but it likely surfaced during police investigations into scam victims. Experts warn that all remote monitoring devices connected to the internet are at risk if not properly secured.

Key Points: • 800 remote monitoring devices were compromised by malware in May 2024. • The malware created a backdoor for unauthorized access and financial fraud. • Contec identified 19 vulnerabilities in the affected devices, but many users did not apply patches.

Timeline

2021-01-01
Contec began issuing patches for vulnerabilities in SolarView.
2023-01-01
Contec identified 19 vulnerabilities in SolarView devices.
2024-05-01
Malware targeted 800 SolarView devices in Japan.
Date unknown
Details of incident discovery remain unclear.